• bitcoinBitcoin (BTC) $ 67,200.00
  • ethereumEthereum (ETH) $ 2,053.41
  • tetherTether (USDT) $ 0.999889
  • bnbBNB (BNB) $ 590.30
  • xrpXRP (XRP) $ 1.31
  • usd-coinUSDC (USDC) $ 1.00
  • solanaSolana (SOL) $ 80.06
  • tronTRON (TRX) $ 0.317308
  • staked-etherLido Staked Ether (STETH) $ 2,265.05
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.03
  • dogecoinDogecoin (DOGE) $ 0.091021
  • usdsUSDS (USDS) $ 0.999895
  • whitebitWhiteBIT Coin (WBT) $ 51.35
  • leo-tokenLEO Token (LEO) $ 10.08
  • cardanoCardano (ADA) $ 0.244135
  • wrapped-stethWrapped stETH (WSTETH) $ 2,779.67
  • bitcoin-cashBitcoin Cash (BCH) $ 443.34
  • hyperliquidHyperliquid (HYPE) $ 35.68
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 76,243.00
  • chainlinkChainlink (LINK) $ 8.65
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998762
  • ethena-usdeEthena USDe (USDE) $ 0.999632
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 2,466.93
  • moneroMonero (XMR) $ 316.04
  • stellarStellar (XLM) $ 0.161845
  • canton-networkCanton (CC) $ 0.139709
  • wrapped-eethWrapped eETH (WEETH) $ 2,465.31
  • memecoreMemeCore (M) $ 2.64
  • daiDai (DAI) $ 0.999967
  • susdssUSDS (SUSDS) $ 1.08
  • usd1-wlfiUSD1 (USD1) $ 0.999966
  • zcashZcash (ZEC) $ 246.94
  • litecoinLitecoin (LTC) $ 53.36
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 76,366.00
  • paypal-usdPayPal USD (PYUSD) $ 1.00
  • avalanche-2Avalanche (AVAX) $ 8.87
  • hedera-hashgraphHedera (HBAR) $ 0.086864
  • wethWETH (WETH) $ 2,268.37
  • rainRain (RAIN) $ 0.007370
  • shiba-inuShiba Inu (SHIB) $ 0.000006
  • suiSui (SUI) $ 0.866540
  • usdt0USDT0 (USDT0) $ 0.998824
  • the-open-networkToncoin (TON) $ 1.23
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.098849
  • crypto-com-chainCronos (CRO) $ 0.070132
  • bittensorBittensor (TAO) $ 308.00
  • hashnote-usycCircle USYC (USYC) $ 1.12
  • tether-goldTether Gold (XAUT) $ 4,644.94
  • pax-goldPAX Gold (PAXG) $ 4,657.07
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.22
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • mantleMantle (MNT) $ 0.671459
  • polkadotPolkadot (DOT) $ 1.25
  • uniswapUniswap (UNI) $ 3.14
  • global-dollarGlobal Dollar (USDG) $ 1.00
  • pi-networkPi Network (PI) $ 0.172337
  • falcon-financeFalcon USD (USDF) $ 0.997887
  • okbOKB (OKB) $ 82.80
  • skySky (SKY) $ 0.074508
  • aster-2Aster (ASTER) $ 0.664167
  • little-pepe-5Little Pepe (LILPEPE) $ 2.16
  • nearNEAR Protocol (NEAR) $ 1.24
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.15
  • htx-daoHTX DAO (HTX) $ 0.000002
  • usddUSDD (USDD) $ 0.999860
  • aaveAave (AAVE) $ 94.68
  • pepePepe (PEPE) $ 0.000003
  • ripple-usdRipple USD (RLUSD) $ 1.00
  • bitget-tokenBitget Token (BGB) $ 1.91
  • bfusdBFUSD (BFUSD) $ 0.999698
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.13
  • ethereum-classicEthereum Classic (ETC) $ 8.35
  • internet-computerInternet Computer (ICP) $ 2.30
  • ondo-financeOndo (ONDO) $ 0.256414
  • janus-henderson-anemoy-treasury-fundJanus Henderson Anemoy Treasury Fund (JTRSY) $ 1.10
  • gatechain-tokenGate (GT) $ 6.45
  • algorandAlgorand (ALGO) $ 0.123339
  • kucoin-sharesKuCoin (KCS) $ 8.07
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.00
  • quant-networkQuant (QNT) $ 73.21
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 11.04
  • render-tokenRender (RENDER) $ 1.90
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.092550
  • pump-funPump.fun (PUMP) $ 0.001651
  • jito-staked-solJito Staked SOL (JITOSOL) $ 124.46
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.21
  • kaspaKaspa (KAS) $ 0.031757
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,404.69
  • usdtbUSDtb (USDTB) $ 0.999584
  • nexoNEXO (NEXO) $ 0.858533
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,262.26
  • cosmosCosmos Hub (ATOM) $ 1.70
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,631.35
  • worldcoin-wldWorldcoin (WLD) $ 0.261228
  • morphoMorpho (MORPHO) $ 1.48
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999945
  • midnight-3Midnight (NIGHT) $ 0.042436
  • ethenaEthena (ENA) $ 0.080805
  • wbnbWrapped BNB (WBNB) $ 759.61
  • aptosAptos (APT) $ 0.844741
  • ignition-fbtcFunction FBTC (FBTC) $ 76,389.00
  • ousgOUSG (OUSG) $ 114.79
  • official-trumpOfficial Trump (TRUMP) $ 2.85
  • filecoinFilecoin (FIL) $ 0.839191
  • flare-networksFlare (FLR) $ 0.007540
  • vechainVeChain (VET) $ 0.007377
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • xdce-crowd-saleXDC Network (XDC) $ 0.031159
  • yldsYLDS (YLDS) $ 0.999908
  • beldexBeldex (BDX) $ 0.079950
  • binance-staked-solBinance Staked SOL (BNSOL) $ 108.24
  • ghoGHO (GHO) $ 0.999458
  • stable-2​​Stable (STABLE) $ 0.027085
  • jupiter-exchange-solanaJupiter (JUP) $ 0.161973
  • usual-usdUsual USD (USD0) $ 0.997807
  • hash-2Provenance Blockchain (HASH) $ 0.009847
  • arbitrumArbitrum (ARB) $ 0.091903
  • new-x-ceo-is-backNEW X CEO IS BACK (XFLOKI) $ 0.506041
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999720
  • justJUST (JST) $ 0.062091
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 76,461.00
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.238468
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 76,491.00
  • bonkBonk (BONK) $ 0.000006
  • true-usdTrueUSD (TUSD) $ 0.999618
  • a7a5A7A5 (A7A5) $ 0.012360
  • clbtcclBTC (CLBTC) $ 76,920.00
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.42
  • layerzeroLayerZero (ZRO) $ 1.91
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.631987
  • euro-coinEURC (EURC) $ 1.15
  • dexeDeXe (DEXE) $ 8.81
  • chilizChiliz (CHZ) $ 0.038962
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 2,419.84
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.03
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.999097
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 33.97
  • tbtctBTC (TBTC) $ 70,942.00
  • blockstackStacks (STX) $ 0.212584
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.006201
  • wrappedm-by-m0WrappedM by M0 (WM) $ 1.00
  • dashDash (DASH) $ 30.18
  • tezosTezos (XTZ) $ 0.343300
  • hastra-primePRIME (PRIME) $ 1.03
  • sei-networkSei (SEI) $ 0.053830
  • usxUSX (USX) $ 0.999756
  • c8ntinuumc8ntinuum (CTM) $ 0.087592
  • kinesis-goldKinesis Gold (KAU) $ 146.81
  • adi-tokenADI (ADI) $ 4.35
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,455.82
  • ether-fiEther.fi (ETHFI) $ 0.442510
  • decredDecred (DCR) $ 20.03
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999983
  • sun-tokenSun Token (SUN) $ 0.017247
  • resolv-wstusrResolv wstUSR (WSTUSR) $ 1.13
  • apenftAINFT (NFT) $ 0.00000033
  • cocaCOCA (COCA) $ 1.30
  • venice-tokenVenice Token (VVV) $ 7.05
  • bitcoin-svBitcoin SV (BSV) $ 15.94
  • doge-strategyDoge Strategy (DOGESTR) $ 0.288297
  • curve-dao-tokenCurve DAO (CRV) $ 0.211038
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 2,406.26
  • edgexedgeX (EDGE) $ 0.894238
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 76,200.00
  • gnosisGnosis (GNO) $ 118.67
  • bittorrentBitTorrent (BTT) $ 0.00000032
  • usdaiUSDai (USDAI) $ 0.999988
  • monadMonad (MON) $ 0.027331
  • wrapped-flareWrapped Flare (WFLR) $ 0.009961
  • aerodrome-financeAerodrome Finance (AERO) $ 0.314728
  • kaiaKaia (KAIA) $ 0.048120
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,266.86
  • injective-protocolInjective (INJ) $ 2.80
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.12
  • plasmaPlasma (XPL) $ 0.117039
  • fraxLegacy Frax Dollar (FRAX) $ 0.993292
  • zebec-networkZebec Network (ZBCN) $ 0.002776
  • doublezeroDoubleZero (2Z) $ 0.078140
  • iotaIOTA (IOTA) $ 0.061470
  • binance-peg-xrpBinance-Peg XRP (XRP) $ 1.59
  • conflux-tokenConflux (CFX) $ 0.051624
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 2,443.47
  • official-foOfficial FO (FO) $ 0.269128
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,421.84
  • lido-daoLido DAO (LDO) $ 0.315188
  • kinesis-silverKinesis Silver (KAG) $ 70.71
  • noonNoon (NOON) $ 0.751949
  • sbtc-2sBTC (SBTC) $ 77,039.00
  • crvusdcrvUSD (CRVUSD) $ 0.997817
  • kite-2Kite (KITE) $ 0.146320
  • jasmycoinJasmyCoin (JASMY) $ 0.005284
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 115.56
  • the-graphThe Graph (GRT) $ 0.024148
  • savings-usddSavings USDD (SUSDD) $ 1.03
  • celestiaCelestia (TIA) $ 0.288922
  • flokiFLOKI (FLOKI) $ 0.000027
  • olympusOlympus (OHM) $ 15.81
  • msolMarinade Staked SOL (MSOL) $ 133.18
  • riverRiver (RIVER) $ 12.42
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,265.06

Zcash Vulnerability That Put Millions of Dollars of ZEC at Risk Has Been Fixed

0 0


In brief

  • A security researcher discovered a critical vulnerability in Zcash nodes that bypassed proof verification for the deprecated Sprout shielded pool.
  • Major mining pools deployed the patch within three days, with Zcash developers releasing v6.12.0 on Tuesday.
  • Zcash’s “turnstile” mechanism would have prevented broader supply inflation even if the pool had been compromised.

A security researcher discovered a critical vulnerability in Zcash nodes that could have allowed malicious miners to drain more than 25,000 $ZEC from the network’s deprecated Sprout shielded pool—a sum worth about $6.5 million at writing.

Alex “Scalar” Sol disclosed the flaw on March 23, according to a disclosure report released Tuesday, revealing that zcashd nodes were skipping proof verification for transactions involving the legacy Sprout pool. The bug was not exploited and all users’ funds remain safe, according to the disclosure.

The vulnerability spanned releases from July 2020 through the present, with Zcash developers releasing v6.12.0 on Tuesday to contain the fix. Major mining pools moved quickly to patch their systems—Luxor mining pool confirmed deployment on March 25, while F2Pool, ViaBTC, and AntPool all deployed the fix by March 26, according to the same report.

The Zebra full node implementation was not affected by the vulnerability, the report said, and would have triggered a chain fork if exploitation had been attempted, providing an additional layer of network protection.

Sol, who discovered the vulnerability using AI assistance, reported it to Shielded Labs on March 23. The organization coordinated with the Zcash Open Development Lab (ZODL), whose engineer Jack “str4d” Grigg authored the patch.

For his disclosure, Sol will receive a 200 $ZEC total bounty—valued above $51,000—with Shielded Labs, ZODL, the Zcash Foundation, and Bootstrap each contributing 50 $ZEC.

The Sprout pool was closed to new deposits in November 2020, making it a deprecated but still-active component holding approximately 25,424 $ZEC that users have not yet migrated to newer shielded pool versions.

While the vulnerability could have allowed draining these funds, the Zcash Open Development Team (ZODL) said that Zcash’s “turnstile” mechanism would have prevented broader supply inflation. The turnstile requires that any coins leaving the Sprout pool must have verifiably entered it, creating a safeguard against the creation of new tokens beyond the network’s total circulation of around 16.63 million $ZEC.

This isn’t the first big vulnerability that the network has faced. Back in 2019, the network patched a bug described as an “infinite counterfeit” crypto generator, though it was patched out before becoming a major issue for the privacy coin network.

Zcash is the biggest gainer over the last 24 hours among the top 100 coins by market cap, per CoinGecko data, rising more than 14% to a recent price above $255. The price of the privacy coin skyrocketed last fall from a price of about $50 to a multi-year peak near $700, but has fallen alongside Bitcoin and other cryptocurrencies in recent months.



Source link

Leave A Reply

Your email address will not be published.